X

Vous n'êtes pas connecté

Maroc Maroc - SECURITYAFFAIRS.CO - A La Une - 05/01/2025 19:06

Nuclei flaw allows signature bypass and code execution

A vulnerability in Nuclei, an open-source vulnerability scanner, could allow attackers to bypass signature checks and execute malicious code. A high-severity security flaw, tracked as CVE-2024-43405 (CVSS score of 7.4), in the open-source vulnerability scanner ProjectDiscovery’s Nuclei, could allow attackers to bypass signature checks and execute malicious code. The Wiz’s engineering team discovered the vulnerability. The vulnerability […]

Articles similaires

Sorry! Image not available at this time

Ingress-NGINX Flaw Enables Arbitrary Code Execution Attacks

itsecuritynews.info - 04/Feb 07:02

A high-severity vulnerability has been discovered in the Kubernetes ingress-nginx controller, allowing attackers to execute arbitrary code and...

Sorry! Image not available at this time

Critical SandboxJS Vulnerability Allows Remote Host Takeover – PoC Released

itsecuritynews.info - 11/Feb 17:18

A severe sandbox escape vulnerability has been discovered in the JavaScript library, enabling attackers to execute arbitrary code on host systems. The...

Sorry! Image not available at this time

BeyondTrust fixes critical pre-auth bug allowing remote code execution

securityaffairs.co - 09/Feb 19:52

BeyondTrust patched a critical pre-auth flaw in Remote Support and PRA that could let attackers execute code remotely. BeyondTrust released security...

Sorry! Image not available at this time

Critical Fortinet FortiClientEMS flaw allows remote code execution

itsecuritynews.info - 09/Feb 21:34

Fortinet warns of a critical FortiClientEMS vulnerability that lets remote attackers run malicious code without logging in. Fortinet issued an urgent...

Sorry! Image not available at this time

CISA Alerts Users to Notepad++ Flaw Allowing Code Execution

itsecuritynews.info - 13/Feb 09:09

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability in the popular Notepad++ text editor to its Known...

Sorry! Image not available at this time

BeyondTrust fixes critical pre-auth bug allowing remote code execution

itsecuritynews.info - 09/Feb 20:37

BeyondTrust patched a critical pre-auth flaw in Remote Support and PRA that could let attackers execute code remotely. BeyondTrust released security...

Sorry! Image not available at this time

Critical Fortinet FortiClientEMS flaw allows remote code execution

securityaffairs.co - 09/Feb 20:54

Fortinet warns of a critical FortiClientEMS vulnerability that lets remote attackers run malicious code without logging in. Fortinet issued an urgent...

Sorry! Image not available at this time

Attackers exploit BeyondTrust CVE-2026-1731 within hours of PoC release

securityaffairs.co - 13/Feb 15:19

Attackers quickly targeted BeyondTrust flaw CVE-2026-1731 after a PoC was released, enabling unauthenticated remote code execution. Threat actors...

Sorry! Image not available at this time

Multiple Endpoint Manager bugs patched by Ivanti, including remote auth bypass

securityaffairs.co - 12/Feb 06:13

Ivanti patched over a dozen Endpoint Manager flaws, including a high-severity auth bypass that let attackers steal credentials remotely. Ivanti...

Sorry! Image not available at this time

Critical Fortinet FortiClient EMS Vulnerability Allows Remote Code Execution

itsecuritynews.info - 09/Feb 09:32

A critical security vulnerability has been discovered in Fortinet’s FortiClient EMS (Endpoint Management Server), potentially exposing organizations...